CVE-2026-55105 | laurent22 Joplin up to 3.6.14/3.7.1 Fountain Renderer fountain.ts mdToHtml cross site scripting
A vulnerability was found in laurent22 Joplin up to 3.6.14/3.7.1 and classified as problematic. Affected is the function mdToHtml of the file packages/renderer/MdToHtml/rules/fountain.ts of the component Fountain Renderer. Executing a manipulation can lead to cross site scripting.
This vulnerability is handled as CVE-2026-55105. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More